The Walt Disney Company Logo

The Walt Disney Company

Security Specialist, Corrective Action

Posted 4 Days Ago
Be an Early Applicant
Hybrid
Orlando, FL
Mid level
Hybrid
Orlando, FL
Mid level
The Security Specialist is responsible for addressing cybersecurity gaps, facilitating remediation with IT and business partners, and ensuring compliance with security standards. The role involves communication across teams to implement security improvements and staying informed on regulatory changes and emerging threats.
The summary above was generated by AI

At Disney, we're storytellers. We make the impossible, possible. The Walt Disney Company is a world-class entertainment and technological leader. Walt's passion was to continuously envision new ways to move audiences around the world-a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences - and we're constantly looking for new ways to enhance and protect these exciting experiences.
The Global Information Security (GIS) group provides services and solutions to protect the value and use of Disney's information through risk evaluation, collaboration, standardization, enforcement, and education across the enterprise. We protect the brand and reputation while enabling and supporting business objectives. GIS teams are located in Seattle, Burbank, and Orlando.
Disney Experiences is required to address security control gap issues identified through various assessment programs. A cybersecurity corrective action job involves developing and implementing plans to address security gaps and vulnerabilities. This includes issues identified through internal assessments against corporate policy, vulnerability scanning, penetration testing, and regulatory issues identified through compliance program assessments such as PCI and EU data privacy.
This role is responsible for facilitating remediation and corrective action activities with IT and business partners. This role involves communication, collaboration, negotiation, and holding partners accountable. This role collaborates with multiple teams to coordinate the implementation of security improvements that mitigate risks and enhance the organization's overall security posture.
Develops and evaluates compliance with programs and processes to mitigate cybersecurity risk and ensure protection of company and allied assets and information. Reviews and enhances network systems and processes for compliance with external regulations and internal standards. Proactively identifies non-conforming areas and assesses risk. Recommends and implements compliance measures. Provides leadership on compliance issues to solve challenging security compliance problems. Ensures documentation and reporting in support of analysis. Stays current on evolving legislative / regulatory changes related to security compliance.
What You'll Do

  • Review reports, assessments, and findings to identify remediation and/or corrective action needed.
  • Coordinate with IT and business partners to facilitate necessary remediation and corrective action.
  • Verify remediation and corrective action activity achieves compliance against security standards such as CIS Benchmarks, NIST, and TWDC policies and standards.
  • Document open items in status reports, including next steps, dependencies, and stakeholders.
  • Communicate results to stakeholders, including technical and non-technical audiences.
  • Provide recommendations to improve security posture.
  • Assist in improving security baselines and standards.
  • Stay updated on evolving security guidelines and incorporate them into IT and business practices.
  • Stay informed on emerging threats and vulnerabilities.
  • Proactively recommend adjustments to mitigate risks.


Required Qualifications & Skills

  • 3+ years of related cybersecurity experience
  • Demonstrated experience facilitating corrective action.
  • Ability to work well with individuals and teams with varying technical and business backgrounds.
  • Understanding of security frameworks and standards.
  • Analytical thinking and attention to detail.
  • Established problem-solving skills with an ability to develop creative alternatives to complex problems, as well as continuous improvement process skills
  • Demonstrated ability to handle confidential information.
  • Experience with IT security venerability programs (specifically Archer) within a large and complex organization.


Required Education

  • Bachelor's degree and/or equivalent work experience


Preferred Education:

  • One or more general security certifications including PCNSE, Security+, CySA+, CCNA Cyber Ops, AWS, GSEC, GICSP, CISSP, or other relevant certifications
  • One or more vulnerability assessment or auditing certification including CISSA, CISM, GCCC, GSNA or other relevant certifications

Similar Jobs at The Walt Disney Company

2 Days Ago
Hybrid
Orlando, FL, USA
Entry level
Entry level
AdTech • Digital Media • News + Entertainment
The Associate Security Specialist is responsible for identifying security gaps through assessments, coordinating remediation efforts, and ensuring compliance with security standards. This role involves documentation, communication with stakeholders, and recommendations to improve security posture while staying informed on emerging threats.
Top Skills: Cybersecurity
3 Hours Ago
Hybrid
Orlando, FL, USA
Senior level
Senior level
AdTech • Digital Media • News + Entertainment
The Staff Security Specialist will provide security expertise to ensure compliance controls are implemented in projects, systems, and third-party services. Responsibilities include leading reviews of assessments, coordinating remediation activities, verifying compliance against standards, and recommending improvements to security posture while staying informed on emerging threats and trends.
Top Skills: Computer ScienceCyber SecurityManagement Information Systems
3 Hours Ago
Hybrid
Orlando, FL, USA
Senior level
Senior level
AdTech • Digital Media • News + Entertainment
The Staff Security Specialist will provide security expertise to ensure compliance controls are implemented in projects, systems, and third-party services. Responsibilities include leading reviews of assessments, coordinating remediation activities, verifying compliance against standards, and recommending improvements to security posture while staying informed on emerging threats and trends.
Top Skills: Computer ScienceCyber SecurityManagement Information Systems

What you need to know about the Ottawa Tech Scene

The capital city of Canada and the nation's fourth-largest urban area, Ottawa has proven a rapidly growing global tech hub. With over 1,800 tech companies, many of which are leaders in their sectors, the city's tech talent now makes up more than 13 percent of its total workforce. This growth is driven not only by the big players like UL Solutions and Dropbox, but also by a thriving startup ecosystem, as new businesses emerge to follow in the footsteps of those that came before them.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account